Malware

What is “Razy.450935”?

Malware Removal

The Razy.450935 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Razy.450935 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Razy.450935?


File Info:

crc32: DA4D20C3
md5: c734e52191af5ed89337d3d5c0336616
name: C734E52191AF5ED89337D3D5C0336616.mlw
sha1: 2b75ba92f6b238d5534b91d89b6248fa3da0c0fe
sha256: 7cf80b07c4a562f59336527795f7971911c6b3e46debd4f486fdec385a7dfb1f
sha512: 21eaccd93cd3581ec752bd05fbfacce24fece91edf7fcb94023af0b555207e65a1e0c77043dd13304806e3854e712fd506fcf4e7c6736f15efbd0ca9bd7aedbb
ssdeep: 12288:nh7k3p/q1RBzmgTJRDAxvfZjFh8LADY3eZ+zr3ll13MCnSl:nW3QdxJuxvfZFh88slPCC
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017, texukfaw
FileVersion: 1.0.0.1
ProductVersion: 1.0.0.1

Razy.450935 also known as:

K7AntiVirusTrojan ( 005466e31 )
Elasticmalicious (high confidence)
DrWebTrojan.Coinbit.60
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.450935
CylanceUnsafe
ZillyaTrojan.GenKryptik.Win32.25913
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/CoinMiner.ali1002002
K7GWTrojan ( 005466e31 )
Cybereasonmalicious.191af5
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/GenKryptik.CJSV
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan-PSW.MSIL.Fareit.gen
BitDefenderGen:Variant.Razy.450935
NANO-AntivirusTrojan.Win32.Fareit.fnauvb
MicroWorld-eScanGen:Variant.Razy.450935
TencentMsil.Trojan-qqpass.Qqrob.Sxea
Ad-AwareGen:Variant.Razy.450935
SophosMal/Generic-S
ComodoMalware@#35r21ck3ofxbt
BitDefenderThetaGen:NN.ZemsilF.34236.Um0@aKgtVnli
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.c734e52191af5ed8
EmsisoftGen:Variant.Razy.450935 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.PSW.MSIL.hue
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1122335
Antiy-AVLTrojan/Generic.ASMalwS.2A63AA3
MicrosoftTrojan:Win32/Occamy.C7C
SUPERAntiSpywarePUP.DealPly/Variant
GDataGen:Variant.Razy.450935
AhnLab-V3Malware/Win32.Generic.C2692173
Acronissuspicious
McAfeeArtemis!C734E52191AF
MAXmalware (ai score=86)
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
YandexTrojan.GenAsa!kc+f8n3VP6A
IkarusTrojan.MSIL.Krypt
MaxSecureTrojan.Malware.73688875.susgen
FortinetMSIL/GenKryptik.CJSV!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Razy.450935?

Razy.450935 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment